Page 3 of 64 results (0.002 seconds)

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 0

26 Mar 2001 — Buffer overflow in /usr/bin/cu in Solaris 2.8 and earlier, and possibly other operating systems, allows local users to gain privileges by executing cu with a long program name (arg0). • http://marc.info/?l=bugtraq&m=97983943716311&w=2 •

CVSS: 10.0EPSS: 0%CPEs: 74EXPL: 13

14 Nov 2000 — Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 7.8EPSS: 0%CPEs: 26EXPL: 2

14 Jun 2000 — Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname. • https://www.exploit-db.com/exploits/20014 •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

31 Dec 1999 — The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges. • http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1 •

CVSS: 9.8EPSS: 7%CPEs: 33EXPL: 0

13 Sep 1999 — The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192 •

CVSS: 10.0EPSS: 5%CPEs: 9EXPL: 2

01 Jul 1999 — Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd). • https://www.exploit-db.com/exploits/19420 •

CVSS: 7.8EPSS: 0%CPEs: 30EXPL: 1

09 Jun 1999 — The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing. • https://www.exploit-db.com/exploits/19255 •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 1

10 May 1999 — Buffer overflow in Solaris dtprintinfo program. • https://www.exploit-db.com/exploits/19205 •

CVSS: 9.8EPSS: 0%CPEs: 20EXPL: 0

21 May 1998 — Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0303 •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

29 Apr 1998 — Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server. • http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/168 •